LEGAL

Acceptable use policy

Last updated 2026-08-05

This policy sits alongside our terms of service. It exists so the service stays available and affordable for everyone using it as intended.

Please do

  • Query addresses you are investigating, operating, or responsible for.
  • Cache results locally — the dataset changes daily, not by the second.
  • Use a descriptive user agent so we can contact you if something looks wrong.
  • Back off when you receive a 429, using the Retry-After header.
  • Tell us about a provider we are missing.

Please do not

  • Enumerate the dataset. Sequential or exhaustive scanning to reconstruct our ranges in bulk is not permitted on any tier. If you need the whole dataset, that is what the bulk data tier is for, and it is cheaper than scraping it.
  • Circumvent rate limits by rotating source addresses, distributing queries across hosts or proxies, or sharing keys between organisations.
  • Redistribute results as your own dataset or feed without a bulk data agreement.
  • Use free-tier access commercially. See section 2 of the terms for where that line falls.
  • Present our data as a safety verdict. Do not describe SourceIP output to your own users as an allow-list, a safe list, or a threat score. It is attribution, and representing it otherwise misleads people making security decisions.
  • Attempt to disrupt the service, probe it for vulnerabilities without contacting us first, or use it to support unlawful activity.

Reporting

To report abuse of the service, or a vulnerability in it, emailsupport@sourceip.io.